Skip to content

A script to detect if xz is vulnerable - CVE-2024-3094

Notifications You must be signed in to change notification settings

Yuma-Tsushima07/CVE-2024-3094

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 

Repository files navigation

CVE-2024-3094

CVE-2024-3094 is a critical security vulnerability discovered in the upstream tarballs of the xz utility, starting with version 5.6.0. This vulnerability involves malicious code that, through complex obfuscations, manipulates the build process of liblzma.

What is this repo for?

This repo is to help you find if xz is vulnerable in your system and to fix this automatically.

Usage:

$ python3 detect.py

Demo:

image

About

A script to detect if xz is vulnerable - CVE-2024-3094

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages